CVE-2025-10966 - missing SFTP host verification with wolfSSH
CVE ID : CVE-2025-10966
Published : Nov. 7, 2025, 8:15 a.m. | 1 hour, 31 minutes ago
Description : curl's code for managing SSH connections when SFTP was done using the wolfSSH powered backend was flawed and missed host verification mechanisms. This prevents curl from detecting MITM attackers and more.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Nov. 7, 2025, 8:15 a.m. | 1 hour, 31 minutes ago
Description : curl's code for managing SSH connections when SFTP was done using the wolfSSH powered backend was flawed and missed host verification mechanisms. This prevents curl from detecting MITM attackers and more.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...